Why It Matters

Sens. Chris Coons (D-DE) and Mike Rounds (R-SD) introduced bipartisan legislation Aug. 14 designed to protect the nation’s electrical grid from emerging cybersecurity threats posed by quantum computing. The Quantum Grid Utility Assurance and Resilient Defense Act, or Quantum-GUARD Act, would direct federal regulators and the Department of Energy to evaluate quantum-related vulnerabilities and help electric utilities transition to post-quantum cryptography.

The push comes as advances in quantum computing raise concerns that sufficiently powerful systems could eventually break widely used encryption standards protecting critical infrastructure and sensitive data. The National Institute of Standards and Technology finalized its first three post-quantum cryptography standards in August 2024 and has encouraged organizations to begin transitioning to them.

Rounds framed the legislation as an extension of existing administration priorities. He said the measure would codify parts of President Donald Trump’s executive order addressing advanced cryptographic attacks and support the electric grid’s transition to post-quantum cryptography. Trump’s June executive order established a federal policy of transitioning government systems to NIST-approved post-quantum standards and assisting critical infrastructure owners and operators with their transitions.

What They're Saying

The Quantum-GUARD Act would require the Federal Energy Regulatory Commission to consider cybersecurity risks posed by quantum computers when reviewing proposed grid reliability standards and to consider potential uses of post-quantum cryptography in information technology and operational technology systems.

The bill would also require the Department of Energy’s Office of Cybersecurity, Energy Security, and Emergency Response to establish a collaborative testing environment, or sandbox, within one year. The program would bring together grid operators, technology vendors, federal agencies, state and local organizations and utilities to identify challenges to adopting post-quantum cryptography and test potential solutions.

The Energy Department would separately study quantum cybersecurity risks to the bulk-power system, including vulnerabilities in information technology and operational technology and obstacles to moving high-value systems to post-quantum cryptography. The department would submit its findings and recommendations to the Senate Energy and Natural Resources Committee and House Energy and Commerce Committee within one year.

IonQ, a quantum technology company, endorsed the Quantum-GUARD Act. American Binary, the Quantum Industry Coalition, the Quantum Economic Development Consortium and the Cyber Threat Alliance also backed the legislation.

The Bottom Line

The Quantum-GUARD Act would establish a federal framework for identifying and addressing quantum computing threats to the electric grid before sufficiently powerful quantum computers can undermine existing encryption. The bill would require federal officials to assess vulnerabilities, incorporate quantum risks into grid reliability standards and create a testing environment where utilities, technology companies and government agencies could evaluate post-quantum cybersecurity protections.

Spot something wrong? Report an issue with this article